Lead Data and BI Developer – Commercial and Contract Management Directorate (Operating Centre) (Ref: 75329)

East Midlands (England), East of England, London (region), North East England, North West England, Scotland, South East England, South West England, Wales, West Midlands (England), Yorkshire and the Humber

Job summary

This is a National Role

Job description

We encourage applications from people from all backgrounds and aim to have a workforce that represents the wider society that we serve. We pride ourselves on being an employer of choice. We champion diversity, inclusion and wellbeing and aim to create a workplace where everyone feels valued and a sense of belonging. To find out more about how we do this visit: https://www.gov.uk/government/organisations/ministry-of-justice/about/equality-and-diversity.

https://justicejobs.tal.net/vx/lang-en-GB/brand-2/user-24779/xf-a12525759150/wid-1/ats/recruiter/opportunities/vacancy/75329Job Title:  Lead Data and BI Developer

Job Grade:  Grade 7

Reporting to:  Head of Commercial Systems, Planning & MI

Job Location:  National (click HERE to find your nearest location)

Contract Type:  Permanent

Business Area:  MOJ – Commercial & Contract Management Department

Type of role:  Senior Leadership

Working pattern:  Flexible working, Full-time

Number of Posts:  1

About the Department

The Ministry of Justice (MoJ) is a major government department, at the heart of the justice system. Responsible for courts, prisons and probation services, we work to ensure sentences are served and offenders are given rehabilitation opportunities to become law-abiding citizens.

The Ministry of Justice (MoJ) has one of the largest and most complex spend profiles in central government. The Commercial and Contract Management Directorate (CCMD) is responsible for coordinating procurement and contract management across the MoJ, its agencies and non-departmental public bodies.

The MoJ spends £3.5bn a year and manages over 1000 active contracts, all of which are sourced and managed by CCMD. We are running some of the most groundbreaking programmes such as Prison Reform and Her Majesty’s Courts and Tribunal Service Reform. The scope of our contracts ranges from building, maintenance and the operation of Prisons, Courts and Young Offender establishments through to food for prison dogs. The directorate also buys and manages contracts for feeding up to 80,000 prisoners, the secure escorting of prisoners from numerous establishments based around the country and translation services.

CCMD is organised into category teams, each with an interesting portfolio of contracts and diverse customers and suppliers to manage. We also have systems, programme management office, supplier relationship and risk management teams who work across all areas.

Scope

Portfolio – Commercial Operating Centre

The post holder will assist the Head of Commercial Systems, Planning & MI alongside the Senior MI & Planning Manager and Senior Systems Manager driving forward the development of a new data platform within the Commercial and Contract Management Directorate (CCMD). The role will focus on designing and building a data quality engine, ETL procedures, orchestration, integration and data warehousing. The post holder will also develop and maintain the commercial data model and provide advice, guidance, and training on Power BI and the broader Power Platform to the MI team as well as themselves undertaking complex Power BI deliveries. Reporting to the Head of Commercial Systems, Planning and MI, this is a national post with occasional travel.

Key Responsibilities

  • Designing and building the Commercial Data Quality Engine, Data Warehouse, Intelligence Portal, and ETL
  • Managing the Integration Layers/APIs for various commercial systems.
  • Working with the Business Analyst to produce per process Data Models
  • Maintaining the overall Commercial Data Model
  • Designing and building an Orchestration Layer and Enterprise Service Bus to coordinate the ETL from various Data Silo’s into the Data Quality Engine and Data Warehouse
  • Development of complex Power BI reports and training advanced Power BI reporting
  • Develop calculated measures in the Data Warehouse, integrated into Power BI for the MI Team
  • Work closely with the Senior Systems Manager and the Senior Planning & MI Manager to coordinate the activity of the Business Analyst and Data Analysts to support the overall technical delivery
  • Developing and maintaining the overall technical delivery plan
  • Work closely with the Information Governance Manager to ensure that data is managed and retained according to the information and data governance policies
  • Provide high quality technical advice in a busy and challenging environment, working in close partnership with staff at all levels of CCMD.
  • Establish and maintain relationships with internal and external stakeholders and teams.
  • Become familiar with internal and external resources relating to relevant technical concepts
  • Working closely with Data Stewards and Business Analysts to ensure there is a common understanding of data definitions and quality requirements

The duties/responsibilities listed above describe the post as it is at present and is not intended to be exhaustive. The job holder is expected to accept reasonable alterations and additional tasks of a similar level that may be necessary.  

Person Specification

Essential Criteria:

We are looking for an individual who understands data engineering, data architecture, business intelligence and data management, is a self-starter, operates efficiently at pace and thrives in a challenging environment.

Knowledge, skills and abilities we are looking for:

  • A deep understanding of data architecture, data integration, data engineering and business intelligence
  • Advanced Power BI skillset which includes DAX, data modelling, data visualisation, and direct query
  • A deep understanding of Microsoft Azure, Power Platform, SQL and a broad data engineering skillset
  • The ability to design and build orchestration, integration, warehousing, data quality tests, calculated measures and ETL procedures
  • Experience rapidly prototyping the full data stack at a ‘per business process’ level
  • Ability to think creatively, network and develop strong working relationships.
  • Excellent written and verbal communication skills to suit a range of audiences including senior managers, and ability to address matters sensitively.
  • Ability to manage own workload, working accurately and efficiently to fixed deadlines with minimal supervision, and to prioritise a range of competing demands while maintaining attention to detail.
  • A willingness to acquire and maintain up-to-date knowledge of product set and policies in relation to data governance
  • The ability to self-start and to identify the optimal pathway to deliver change, in an otherwise busy environment with competing priorities

Most importantly we are looking for someone with the right personal qualities – enthusiasm, energy, proactivity, prepared to work under their own initiative and to be flexible and adaptable in a fast-paced environment.

Assessment

We will assess your suitability for this role against the Government’s published Success Profiles.  For this role these are:

Application form stage assessments: 

An initial sift will be performed against the following elements: 

Experience

  • CV
  • Statement of Suitability (1000 words)

Behaviours

  • Developing Self and Others

Interview assessment: 

There is one interview stage for this vacancy and as part of the interview process you will be required to provide evidence of the following:  

Behaviours

  • Communicating and Influencing
  • Working together
  • Changing and Improving

Technical

  • Data Architecture
  • Features of Power BI
  • Use of Power BI

An initial sift will be performed on your Statement of Suitability and CV against the essential criteria listed above.

Please use STAR approach to structure your examples. 

  • Situation – Describe the situation you found yourself in and what happened. 
  • Task – The Hiring Manager will want to understand what you tried to achieve from the situation that you found yourself in. 
  • Action – What actions did you take and how did you do it. Make sure to use “I”, not “we” to explain how your actions lead to a result. 
  • Result – Use facts and statistics to demonstrate the results that your actions produced. Explain whether it was a successful outcome, and if not, what you learned from the experience.  

Further information on the Success profile elements can be found on Success Profiles – GOV.UK (www.gov.uk) 

Person specification

Please refer to Job Description

Behaviours

We’ll assess you against these behaviours during the selection process:

  • Developing Self and Others
  • Communicating and Influencing
  • Working Together
  • Changing and Improving

Technical skills

We’ll assess you against these technical skills during the selection process:

  • Data Architecture
  • Features of Power BI
  • Use of Power BI
  • Access to learning and development
  • A working environment that supports a range of flexible working options to enhance your work life balance
  • A working culture which encourages inclusion and diversity
  • Civil Service pension with an average employer contribution of 27%
  • Annual Leave
  • Public Holidays
  • Season Ticket Advance

Head of Cyber Security Skills and Resourcing Team

Bristol, South West England, BS2 0ES : Cardiff, Wales, CF10 1EP : Salford, North West England, M3 5BS : Telford, West Midlands (England), TF3 4NT

Job summary

A national shortage of cyber security skills makes many of our vacancies hard to fill. To address this, the Security Capability, Engagement and Professionalisation Team (SCEP) have begun a programme of work to identify how we can grow our talent pipeline, in addition to established pathways. The key objective for the successful candidate will be to build cyber security expertise in HMRC Security and ensure we have a workforce with the skills needed to protect the Department from the evolving cyber threat.

The programme will involve initial discovery work to understand the size and nature of the problems we face, as well as identifying and delivering quick wins before moving to the larger projects.

You will be part of the SCEP Senior Management Team with specific responsibility for building our cyber talent pipeline and employment offer. You will work closely with our HR Business Partner and other colleagues within the Group HR function.

The post holder will be expected to represent HMRC at cross-Government Security Profession forums and will also have a key leadership role in the HMRC Professions network, and in delivering on HMRC Security’s people priorities.

See what it’s like to work at HMRC: find out more about us or ask our colleagues a question. Questions relating to an individual application must be emailed as detailed later in this advert.

Job description

The successful candidate will lead the work on developing the cyber security specialism within HMRC. This will include:

  • Undertaking detailed discovery work to assess the cyber skills gap in HMRC Security, including understanding the make-up of the current workforce, job analysis and skills analysis of current and future needs
  • Reviewing existing cyber security talent and development schemes to understand how far these will bridge the gap
  • Developing plans for how we make most effective use of other initiatives within the security community (e.g. CyberFirst)
  • Overseeing new cyber security talent and development schemes including supplier management, e.g., scoping work on developing a “cyber academy”
  • Developing an outreach strategy, scoping work on industry secondments, and considering how to mitigate barriers to staff retention working closely with HR.
  • Support the Head of SCEP in delivering SCEP’s vision to build the security profession in HMRC and deliver on the HMRC Security people priorities.
  • Building the cyber security specialism within HMRC, supporting the Government Cyber Security Strategy; developing a professional community of practice and alumni network.
  • Building relationships with key stakeholders both within HMRC and across Government to ensure a joined-up and robust approach to recruiting and retaining the security professionals of the future.
  • Managing the uptake and endorsement of learning, development and accreditation specifically in relation to Cyber Security; cultivating talent and fostering an inclusive, diverse and motivated workforce.

Person specification

Essential Criteria:

  • Post-holder must hold or undertake vetting to SC level.
  • Strong leadership skills with an ability to inspire, coach and manage teams to successfully deliver.
  • Highly skilled at building effective working relationships in a complex, multi-organisational environment.
  • The ability to use data and insight to solve complex issues and inform the development of strategies.
  • Experience of successfully leading the development and delivery of high-quality People strategies.

Desirable Criteria:

  • Experience of working in or with a security function or other technical discipline.
  • Strong organisational skills, with the ability to see projects through from inception to completion.
  • Strong drafting and presentation skills.
  • A positive approach and drive to collaborate openly with others.
  • Learning and development tailored to your role
  • An environment with flexible working options
  • A culture encouraging inclusion and diversity
  • Civil Service pension with an average employer contribution of 27%

SEO Business Continuity, Resilience and Emergency Response Business Partner

Bridgend, Wales, CF31 4AA : Blackpool, North West England, FY4 5ES : Glasgow, Scotland, G4 0DX : Kilmarnock, Scotland, KA1 2DF : Bangor, Wales, LL57 4FD : Leeds, Yorkshire and the Humber, LS2 7UA : Manchester, North West England, M2 3AA : Newcastle upon Tyne, North East England, NE98 1YX : City of Westminster, London (region), SW1H 9NA

Job summary

We are looking to fill a key leadership role within the Business Continuity and Resilience Team (BCR) which is part of the Security, Continuity, Resilience and Response Directorate within the Change and Resilience Group. The BCR team is located across multiple locations in England, Scotland and Wales. DWP is both large and complex, with dependencies and delivery relationships across UK Government, the Devolved Administrations and private sector partners.

As part of this recruitment campaign, we are looking to establish a reserve list which will be valid for 12 months, as such we are providing a broad range of our activity covered by our SEO team. Specific roles will be discussed when posting candidates.

The successful candidate will play a critical role in the delivery of elements of team activity which spans:

  • The ongoing development of a Business Continuity Management System for an organisation of approx. 85,000 staff, over 800 sites and with around 500 supplier contracts.
  • The management of incidents with the potential to disrupt high-volume and critical financial, employment and welfare services.
  • Departmental preparedness for the full range of risks in the National Security Risk Assessment and a role in the COBR-coordinated cross-government response to high-consequence events.
  • Development of a programme to professionalise BC&R activity across government through the development of policy, capability standards and competence frameworks.

Job description

Whilst individual roles have specific responsibilities it is essential to us that our team work together to ensure that DWP builds, develops and embeds business continuity arrangements so that we have assured and rehearsed contingency plans and can demonstrate a commitment to continuous improvement, and be flexible and effective in our approach to incident and crisis response.

As a Business Partner, the role includes:

  • Gathering data and completing Business Continuity related products including Business Impact Analysis of key products and services, working closely and effectively utilising our software solution
  • Testing planning assumptions through the delivery of an extensive exercise and training programme across all levels of the organisation
  • Ensuring the completion of a comprehensive assurance programme across all of our sites and corporate areas

As a Professionalisation Lead, the role includes:

  • Leading on the development and integration of a professionalisation of Business Continuity as a specialism across government
  • Development of appropriate policy, standards and frameworks to effectively develop the wider BC community and improve capability

As a Response Lead, the role includes:

  • Maintaining a 24/7 scalable crisis and incident response capability
  • Ensuring DWP priority business functions can be restored and resumed in the event of an incident or business disruption

As our Departmental Operations Centre/Briefing Lead, the role includes:

  • Providing professional, accurate and factual communications and briefings for Ministers and senior leaders at pace, maintaining relationships with internal and external stakeholders

As our Readiness Lead, the role includes:

  • Analysing emerging and changing risks to the department and provide timely awareness of these risks through reporting to senior leaders
  • Proactively identifying threats and risks, ensuring they are adequately controlled and mitigated against
  • Providing a DWP focal point for XHMG planning and to drive resilience improvements across the business continuity community, internally and externally through Horizon scanning and managing risks

Person specification

Responsibilities will include some of, but will not be restricted to, the following:

  • Leading the team to develop and continuously improve Business Continuity strategy and delivery through the production and maintenance of effective Business Continuity policies, plans and guidance building resilience within DWP.
  • Ensuring that effective horizon scanning activity is undertaken, both internally and externally, in order to ensure that threats, risks and proposed business changes affecting Business Continuity delivery are identified. Developing mitigation strategies to build resilience to any threats identified.
  • Leading an incident management process for all disruptions across DWP. Provide the required support, communications and escalation to all relevant stakeholders during the normal working day and outside of business hours. Facilitating post-disruption activities to ensure that events are fully understood and lessons are learnt effectively. Identify and deliver improvements and updated guidance products, including MI analysis as necessary to build resilience.
  • Leading the management and coordination of an enhanced Crisis and Incident Response function by leveraging specialist expertise from across DWP (via virtual team arrangements) to support wider Government priorities in response to civil contingencies risks and issues.
  • Being responsible for consistent messaging regarding all departmental responsibilities and provide updates for senior officials, Directors and Ministers. Providing professional, accurate and factual communications and briefings for Ministers and senior officials many of which will appear in the public domain.
  • Driving and developing an exercising agenda to validate Business Continuity arrangements and build knowledge across DWP. Steering and guiding senior managers to act on the outcomes and lessons learnt from exercises to improve the robustness of Business Continuity planning and ensuring that exercises support the improved resilience of DWP business delivery.
  • Collaborating with stakeholders internally and across government to promote closer working, improve Business Continuity policies, explore and exploit opportunities for joined up working and sharing of best practice across Government to ensure standards are consistent and focussed on continual improvement.
  • Driving resilience improvements across Government leading, supporting, influencing and directing the resilience community through organisation and delivery of the Business Continuity Forum, maintenance of Resilience Direct and exercising and reviewing Cross-Government Business Continuity Plans.

Additional information:

The role requires someone who is willing to work towards attaining Membership of the Business Continuity Institute (MBCI) certification within 3 years.

This post will require some travel nationally and this may involve occasional overnight stays.

Please note the post includes a requirement to provide incident management support outside of normal business hours through on call arrangements and an out of hours rota. On call allowances are paid.

This is a national team dispersed over multiple locations. The post holder may be working on their own, remotely from other team members.

The role can be based out of the locations advertised but please note that depending on business need and estates capacity, other locations may be available but cannot be guaranteed.

For jobs located in Wales, the ability to speak Welsh is desirable.

We are looking to increase our representation; we encourage applications from Minority Ethnic backgrounds and other protected characteristics.

Essential Criteria:

Leadership – demonstrate the ability to lead and support people through cultural change/transformation, highly driven and capable self-motivated professional, who has the ability to motivate others and drive forward change and large projects.

Stakeholder engagement – evidence of identifying key stakeholders and forging strong relationships to deliver business objectives and outcomes, bringing together diverse groups of people with a range of skills and capabilities to deliver ‘best in class’ results whilst providing team members with opportunities to progress and develop.

Effective Planning – showing the ability to define the fundamental components of a project in terms of its scope, deliverables, time scales, resource requirements and budget. Plus, the ability to manage risks and issues including those that are strategic and politically sensitive, ensuring regular reporting and escalation as appropriate providing a consolidated overview of a project.

Decision making and analytical skills – showing the ability to use evidence and knowledge to support effective decision making, carefully considering options, implications and risks of decisions. Able to make decisions confidently, to support business continuity priorities, even when details are unclear.

Continuous improvement – ability to demonstrate commitment to reviewing ways of working, embedding good practice, and learning from incidents / projects or lessons identified.

Behaviours

We’ll assess you against these behaviours during the selection process:

  • Leadership
  • Working Together
  • Communicating and Influencing
  • Making Effective Decisions
  • Learning and development tailored to your role
  • An environment with flexible working options
  • A culture encouraging inclusion and diversity
  • Civil Service pension with an average employer contribution of 27%

Senior Cyber Incident Response Analyst

Bristol, London, Manchester

Job summary

The Cabinet Office sits at the heart of HM Government; it supports the Prime Minister and ensures the effective running of government, works alongside HM Treasury as the corporate headquarters for government, and takes the lead in certain critical policy areas.

We are the Cabinet Office’s cyber security team, and our mission is to secure the department against cyber threats by protecting our nationwide internal IT infrastructure, and high-profile citizen-facing digital services.

This role is to lead our cyber incident response function. You will coordinate the triage, investigation and response to security alerts, and enable the function to be as efficient and effective as possible in managing cyber risk. We’re looking for applicants who bring significant hands-on experience, have an in-depth understanding of how cyber attacks take place, can coach and mentor junior staff, and have good analytical, problem solving, and communication skills.

Job description

The Cabinet Office supports the Prime Minister and ensures the effective running of government. It is also the corporate headquarters for government, in partnership with HM Treasury, and takes the lead in certain critical policy areas.

We are the Cabinet Office’s cyber security team, and our mission is to secure the department against cyber threats. We protect our nationwide internal IT infrastructure, and high-profile citizen-facing digital services such as GOV.UK.

This role is within Cyber Defence, which delivers cyber threat intelligence, threat detection, incident response and vulnerability management capabilities for the Cabinet Office, and is responsible for defending both internal IT infrastructure and citizen-facing services. As a senior security analyst, you’ll take a leading role in building and delivering these core capabilities, focusing on incident response, and will:

  • lead the investigation of security alerts to understand the nature and extent of possible cyber incidents
  • lead the forensic analysis of systems, files, network traffic and cloud environments
  • lead the technical response to cyber incidents by identifying and implementing (or coordinating the implementation of) containment, eradication and recovery actions
  • support the wider coordination of cyber incidents
  • review previous incidents to identify lessons and actions
  • identify and deliver opportunities for continual improvement of the incident response capability
  • work closely alongside other Cyber Defence functions, supporting the continual improvement of wider capabilities
  • develop and update internal plans, playbooks and knowledge base articles
  • act as an escalation point for, and provide coaching and mentoring to, security analysts
  • be responsible for leadership and line management of security analysts

Cyber incidents can and do arise on a 24/7 basis. The team operates an out-of-hours on call rota, which you will be expected to join.

Person specification

We’re interested in people who have:

  • significant experience investigating and responding to cyber incidents
  • significant experience using security tools (e.g., EDR, SIEM) to support the investigation and response to cyber incidents
  • experience managing and coordinating the response to cyber incidents
  • experience coaching and mentoring junior staff
  • an in-depth understanding of the tools, techniques and procedures used by threat actors
  • excellent analytical and problem solving skills
  • excellent verbal and written communication skills

It’s desirable, but not essential, that you have:

  • experience with Splunk
  • experience working in an Agile environment
  • experience with cloud environments such as AWS

Behaviours

We’ll assess you against these behaviours during the selection process:

  • Making Effective Decisions
  • Delivering at Pace
  • Managing a Quality Service
  • Working Together
  • Learning and development tailored to your role.
  • An environment with flexible working options.
  • A culture encouraging inclusion and diversity.
  • Civil Service Pension which provides an attractive pension, benefits for dependants and average employer contributions of 27%.
  • A minimum of 25 days of paid annual leave, increasing by one day per year up to a maximum of 30.

Head of Personnel Security

London

Job summary

The Cabinet Office Security Team is the hub for implementing  Security policy within  the Cabinet Office. Its remit covers providing advice and guidance to Business Units and individuals through to acting as the central focus for wider security policy issues affecting the entire department.

The CO Security Team (COSy) is responsible for managing the overall security posture of the department, providing advice to staff and operational incident response to security related incidents. The team is responsible for protection of our people, sites and infrastructure from a range of complex and challenging threats, ranging from protesters through to counter-intelligence issues.

The Personnel Security team handles all aspects of people related security in the department. This includes delivery of security training, management of complex personnel security issues, handling ongoing incidents and investigations, and acting as the departmental lead for all personnel security related issues.

Job description

The postholder will be responsible for delivery of a challenging and exciting programme of work, delivering advice, training and operational response to the department on some of its most complex, sensitive and important personnel and protective security issues. Through their subject matter expertise the role holder will work to minimise the likelihood of existing employees becoming a security concern, reduce the risk of insider activity and, where necessary, carry out investigations to resolve suspicions or provide evidence for disciplinary procedure and work with HR and other stakeholders to implement appropriate policies.  

The role holder will be responsible for developing and implementing a programme of work to enhance the security culture across Cabinet Office, including emplacing metrics to gauge success.  The role will be responsible for developing departmental bespoke briefings, including upto Ministerial level, and a stakeholder matrix to ensure timely briefings.  There is significant scope to develop the role in a range of business areas and to develop a deeper understanding of wider security disciplines.

The ideal candidate will understand personnel security, an ability to work at pace on a variety of challenging projects and be comfortable delivering training to staff.  With close working with the vetting team and the HR complex casework team, the role requires tact, discretion and an ability to provide non-judgemental advice on sensitive issues in a timely manner.

This is a role where the ability to communicate with others is vital. As well as working with internal communications to ensure that security messaging is scheduled into a very busy communications matrix, the role involves writing blogs, delivering presentations, often to large audiences, and finding ways to communicate and influence a diverse audience to engage them on the concepts of personnel security and how to take it seriously.

There is line management of one EO, and an opportunity to enjoy significant autonomy and responsibility for the delivery of a critical programme of work that is vital to staff security.

Person specification

Essential Skills / Experience

The successful candidate will have a firm understanding of personnel security risks and mitigation strategies.  They will be comfortable developing and implementing a security culture programme aiming to protect people and assets and reduce the insider threat.  This will include setting and achieving appropriate performance indicators.

They will have outstanding interpersonal/communication skills in order to work collaboratively with internal and external stakeholders to engender trust, cooperation and buy in.

Proven, demonstrable experience of developing, influencing and implementing policies across boundaries and through multi-discipline teams to deliver successful outcomes.

Outstanding leadership and management skills, with the ability to mentor, motivate and drive the performance of the Security Team remit.

The capacity and capability to apply good judgement and respond to complex, dynamic situations.  A high degree of resilience and personal credibility, and confidentiality. Together with enthusiasm and commitment to deliver. 

Proven and demonstrable experience of managing and delivering projects within taut time frames and budgetary limitations.

Desirable Experience

  • Experience of working in a security environment.
  • Membership of the Security Institute or equivalent accredited body.

Behaviours

We’ll assess you against these behaviours during the selection process:

  • Communicating and Influencing
  • Working Together
  • Changing and Improving
  • Delivering at Pace
  • Seeing the Big Picture
  • Making Effective Decisions
  • Learning and development tailored to your role.
  • An environment with flexible working options.
  • A culture encouraging inclusion and diversity.
  • Civil Service Pension which provides an attractive pension, benefits for dependants and average employer contributions of 27%.
  • A minimum of 25 days of paid annual leave, increasing by one day per year up to a maximum of 30.

Cyber Threat Intelligence Team Lead

London Hub – Caxton House – SW1H 9NA

Job summary

Intelligence is a vital part of the Department’s effort to protect vital services that make a difference to the lives of so many living in the UK. Delivering more than £220 billion in payments annually, while maintaining one of the largest repositories of personal information in Europe, we are an attractive target for a broad range of malicious cyber actors. Consequently, it is vital for DWP to identify and adapt to current and near-future cyber threats so that we keep our customers and their data safe. Crucially, this necessitates working collaboratively across the department and wider Government to develop enhanced understanding of the threat landscape, driving a more informed, capable, and proactive response.

The Threat Intelligence Group (TIG) is part of the Cyber Resilience Centre (CRC), and is a dynamic, innovative and service-oriented team that delivers intelligence-led security to defend the department. You will be working with government and private sector partners to build and mature this capability, detect malicious behaviour, and respond to threats.

As the team lead for strategic cyber threat intelligence , you will be responsible for all aspects of team activities, including its continuing quality, impact and maturity, as well as the welfare and development of assessments staff. Additionally, you will lead on the wider service offering of Threat Assessment, as part of wider TIG activities. 

This role will be based in London only, owing to the sensitive nature of some of the work. Please also read the Candidate Pack linked below, for more detailed information about the role.

Job description

Successful candidates can expect to undertake the following key responsibilities:

  • Providing and inspiring effective leadership within team activities, while driving communication, collaboration, and innovation. Leading activities that establish a positive team culture that aligns with departmental values and good civil service behaviours.
  • Ensuring that staff work effectively with stakeholders to better understand and refine intelligence requirements, to include direct engagement with senior stakeholders.
  • Ensuring that peer review of intelligence products is carried out effectively.
  • Ensuring that the dissemination of intelligence products is carried out smoothly and efficiently, in addition to the successful collection of feedback.
  • Providing briefings to relevant senior internal and external stakeholders, when necessary.
  • Promoting participation in information sharing forums and maintaining other intelligence relationships, both internal and external, to enhance understanding of Departmental threats.
  • The management of assigned internal and external relationships with both stakeholders and counterparts.
  • Driving improvements in overall quality and impact of team intelligence products.
  • Ultimate line management responsibility for all team staff, as well as mentoring responsibilities for more junior or embedded staff.

Person specification

Key Criteria for the role:

  • Significant experience analysing open-source, commercial and government information in order to generate a comprehensive understanding of the threat landscape.
  • Experience of effectively communicating threat intelligence through the appropriate use of high quality written reports and verbal briefings.
  • Experience of successful management and leadership within the public or private-sector, preferably within an information security and / or intelligence environment.
  • Experience of leading in an operationally-focused and high pressure environment.
  • The ability to learn quickly and grasp essential details and be comfortable utilising others’ expertise to inform decision making and assessments.
  • Experience working across organisational boundaries.

Desirable for the role:

  • Demonstrable experience either in a relevant industry, or in an operational role associated with either intelligence or cyber security.
  • A recognised university degree, or a vocational qualification that demonstrates good written and verbal skills.
  • A recognised IT qualification.

Behaviours

We’ll assess you against these behaviours during the selection process:

  • Leadership
  • Making Effective Decisions
  • Communicating and Influencing
  • Working Together
  • Delivering at Pace

Technical skills

We’ll assess you against these technical skills during the selection process:

  • Threat Understanding
  • Written and Visual Communication of Intelligence Assessment
  • Learning and development tailored to your role
  • An environment with flexible working options
  • A culture encouraging inclusion and diversity
  • Civil Service pension with an average employer contribution of 27%
  • This role attracts £5,500 Recruitment & Retention Allowance (RRA) which is a non-pensionable payment on top of the advertised salary – this is subject to regular review and eligibility details will be confirmed with you ahead of appointment.

Hybrid working

his job role may be suitable for hybrid working, which is where an employee works part of the week in their DWP office and part of the week from home.

This is a voluntary, non-contractual arrangement and your office will be your contractual place of work. The number of days that anyone will be able to work at home will be determined primarily by business need, but personal circumstances and other relevant circumstances will also be taken into account.

If you are successful, any opportunities for hybrid working, including whether a hybrid working arrangement is suitable for you, will be discussed with you prior to you taking up your post.

Cyber Security Professional Practitioner (Security Testing)

Bristol, South West England, BS2 0ES : Cardiff, Wales, CF10 1EP : Leeds, Yorkshire and the Humber, LS1 4AP : Salford, North West England, M3 5BS : Newcastle upon Tyne, North East England, NE98 1ZZ : Telford, West Midlands (England), TF3 4NT

Job summary

At HMRC we are committed to creating a great place to work for all our colleagues; an inclusive and respectful environment that reflects the diversity of the society we serve.

We want to maximise the potential of everyone who chooses to work for us and we offer a range of flexible working patterns and support to make a fulfilling career at HMRC accessible to you.

Diverse perspectives and experiences are critical to our success and we welcome applications from all people from all backgrounds with the experience and skills needed to perform this role.

Do you have experience or a Passion for security testing and continual development within this area?

Are you interested in working for an organisation that truly champions a healthy work/life balance?

If so, continue reading to find out more about this fantastic opportunity to join HMRC – one of the largest and most dynamic IT infrastructures in Europe, and we are now one of the most digitally advanced tax authorities in the world.

Now is a great time to join us as we establish a team of outstanding people in the field of Enterprise Security Architecture, Risk Management and Testing, who will create and run these new and improved technology services. This is a chance to work on services that matter and affect the lives of millions of citizens.

See what it’s like to work at HMRC: find out more about us or ask our colleagues a question. Questions relating to an individual application must be emailed as detailed later in this advert.

Job description

The Team

Our Cyber Security Technical Services (CSTS) multidisciplinary team supports H M RC to assess business and reputational risks and are responsible for ensuring everyone has capability to fulfil their security responsibilities and develop individual capability to detect, prevent and respond to security risks and threats.

We continually adapt and evolve to emerging technologies, the ever-changing threat and risk landscape to meet HMRC/HMG business needs.

We are part of an active and encouraging cyber security community, within HMRC and across government.

The Role

As a Cyber Security Professional Practitioner working within Security Testing, you will play a key role in providing security testing, vulnerability assessment and continual security compliance capabilities in order to secure HMRC’s services and to ensure the best possible technical security risk-based advice is given to our customers.

As part of role you will also contribute to wider CSTS services as required.

You will work collaboratively with key business & technical stakeholders, to deliver appropriate security testing risk based technical security advice and guidance, to enable the secure delivery of HMRC solutions and services.

This is an exciting time to join us and the chance to work on services that matter and affect the lives of millions of citizens.

Broadly, we would expect the successful candidate to align with the Government Security Professional for Security Testing and Vulnerability Management Framework .

Responsibilities

  • Engage with internal and external partners to manage and provide appropriate security Testing and assurance to the required standard and in accordance with policy and regulations.
  • Scope, conduct, or support security assessments, pen testing and other non-functional security testing, appropriately recording and sharing any findings.
  • Provide Vulnerability management and continual security compliance expertise across on premise and cloud-based solutions.
  • Work collaboratively with project managers and programme leads to provide subject matter expertise on a range of security testing requirements.
  • Act as escalation point to deal with security testing related incidents.
  • Research, identify, validate, and embrace new technologies and methodologies.
  • Champion consistency across the business in support of our “one team” ethos.
  • Support assessments of threats and vulnerabilities determine deviations from acceptable/defined baselines.
  • Communicate threat, vulnerabilities, and risk information to stakeholders in a clear and concise manner.
  • Assist in the development and delivery of Security testing documentation sets.
  • Research and assess new threats and security/vulnerability alerts, and recommend remedial actions.

Person specification

Essential Criteria

  • Good Technical understanding/grounding along with relevant IT security experience and qualifications.
  • Passion for security testing and continual development within this area.

Desirable Criteria

You will have knowledge, understanding and/or experience of:

  • Using vulnerability management/scanning tooling, compiling reports and conducting regular scanning and assessment activities.
  • Understanding of penetration testing tools and techniques.
  • Experience at managing and/or conducting a wide range of testing in different environments with different complexity.
  • Compiling Security testing reports, with the ability to work with stakeholders to determine real impact and probability of exploits being successful.
  • Security and privacy risks and threats, along with key principles such as confidentiality, availability, integrity, non-repudiation and privacy.
  • Building relationships with stakeholders and communicating technical information to diverse audiences.
  • Using strong communication skills to communicate effectively at all levels to technical and non-technical audiences.
  • Internal team engagement, working collaboratively, sharing knowledge, advising, and training colleagues.
  • Developing and delivering change and successful delivery of technical security aspects of projects.
  • How technical security is applied in real life environments.
  • Technical security controls, threats and vulnerabilities and current IT and security best practice approaches.
  • IT infrastructure (hardware, databases, operating systems, local area networks etc.) and application architectures.
  • A good understanding of threats and threat vectors.

Technical skills

We’ll assess you against these technical skills during the selection process:

  • Technical Aptitude.

Technical skills

We’ll assess you against these technical skills during the selection process:

  • Technical Aptitude
  • Learning and development tailored to your role
  • An environment with flexible working options
  • A culture encouraging inclusion and diversity
  • Civil Service pension with an average employer contribution of 27%

Principal Security Risk Assurance Manager

Birmingham, Blackpool, Cardiff, Glasgow, Leeds, London, Manchester, Newcastle-upon-Tyne, Sheffield

Job summary

This specific role is to lead the DWP Security Assurance Team. Security Assurance is the systematic set of actions necessary to provide confidence that DWP is appropriately managing its security risks and safeguarding an effective national welfare system. The Head of Security Assurance will deliver and promote greater confidence in the DWP’s information security and resilience risk position.

The post holder will support both operational and senior leaders delivering assurance assessments of DWP live functions, systems or services to ensure risks are effectively managed, policies have been correctly applied and security controls meet their objective supporting delivery of DWP objectives. They will highlight areas in policy, process, design and delivery where good practices are being applied. Where controls gaps are identified Security Assurance will enable leaders to understand the impact of security gaps and make informed decisions in relation to the security focus and the management of risks in line with appetite.

The post holder will be an experienced leader, Information Security and Governance Risk & Compliance professional, they will lead a geographically dispersed multi-disciplinary team providing accountable leadership, strategic direction and organisational planning to shape and oversee the work programme.

You’ll need to be willing to travel to other DWP locations, with occasional overnight stays required.

Job description

As Head of Security Assurance you will:

  • Be an experienced visionary leader taking responsibility for the end-to-end security assurance work programme and strategy
  • Lead, manage, motivate, and develop a team of 30 staff
  • Establish the long-term vision, direction, and roadmap for Security Assurance
  • Be an experienced Governance, Risk & Compliance and Information Security Professional with evidenced experience of delivering related work programmes
  • Understand and be able to demonstrate the importance of security as an enabling business function to all levels of an organisation.

Responsibilities

Your roles and responsibilities for this role include, but are not restricted to the following:

  • Lead and shape the Security Assurance Team taking accountability for service delivery and enabling an effective, visible and respected Assurance service to DWP, its Arm’s Length Bodies and external customers where appropriate
  • Accountable for producing, delivering and maintaining the Security Assurance Strategy, Operating model and Work plan
  • Build long term internal and external strategic relationships and influence stakeholders and relationships effectively to gain support for assurance
  • Clearly define priorities and reflect in measurable team objectives
  • Continue to iterate the service ensuring services continue to meet end user needs stakeholder requirements and align to wider departmental risk and control assessment practices
  • Lead by example, visibly and confidently engaging colleagues and stakeholders to support and deliver an effective security assurance capability
  • Drive innovation, empowering team members to take responsibility for removing inefficiencies, driving costs down and improving services
  • Translating a strategic vision into deliverable plans and outputs with actionable metrics in place
  • Provide input at senior governance levels, ensuring security assurance outcomes are fully understood and considered.

Person specification

Personal

Demonstrate exceptional thought and people leadership across the Security Assurance team and beyond.

Influence thinking to balance critical security activity with wider business objectives and priorities.

Demonstrate excellent planning and management skills, addressing performance issues where required.

Demonstrate the values and behaviours of the Civil Service Code of Conduct, leading by example to collaborate effectively learning from others.

Continually build both maturity and capability across the Department.

Essential Criteria

Deep knowledge of Governance Risk & Compliance and Information Security.

Proven experience of interacting at Board Level on security risk/assurance topics to present, escalate and influence decision making.

Evidenced experience of leading a large, diverse team to deliver outstanding services within a security environment.

Proven experience of good relationship management with significant presentation and business writing skills.

Good understanding of security threats, threat actors and how vulnerabilities are exploited.

Experience of working across an Enterprise utilising and understanding the overall security strategies, policies and procedures implemented to protect organisational assets.

Knowledge and/or experience of security controls and how they converge to operate effectively.

Desirable Criteria

ISACA CRISC, CISM or CISA, Certified Governance Risk & Compliance Professional and Auditor GRC (P) GRC (A).

Project Management experience.

For jobs located in Wales, the ability to speak Welsh is desirable.

Behaviours

We’ll assess you against these behaviours during the selection process:

  • Leadership
  • Communicating and Influencing
  • Seeing the Big Picture
  • Changing and Improving

Technical skills

We’ll assess you against these technical skills during the selection process:

  • Risk Management
  • Innovation & Business Improvement
  • Learning and development tailored to your role
  • An environment with flexible working options
  • A culture encouraging inclusion and diversity
  • Civil Service pension with an average employer contribution of 27%
  • A minimum of 25 days annual leave (plus public and privilege leave)

Civil Servants applying on promotion will usually be appointed to the salary minimum or within 10% of existing salary.

This job role may be suitable for hybrid working, which is where an employee works part of the week in their DWP office and part of the week from home. This is a voluntary, non-contractual arrangement and your office will be your contractual place of work. The number of days that anyone will be able to work at home will be determined primarily by business need, but personal circumstances and other relevant circumstances will also be taken into account.

If you are successful, any opportunities for hybrid working, including whether a hybrid working arrangement is suitable for you, will be discussed with you prior to you taking up your post. Please be aware that this role can only be worked in the UK and not overseas.

Senior Officer, National Economic Crime Centre (NECC)

London* or Birmingham – *Under the NCA Estates Strategy, the London office is part of a planned relocation to a new NCA HQ in Stratford, London. Relocation is expected to take place in 2025. If you are successful for a London role, please be aware that your post will be relocated. All employees will be reimbursed excess travel costs associated with changes in location in line with NCA organisational policies.

Job summary

Diverse perspectives and experiences are critical to our success. We welcome applications from all people and backgrounds with the experience/skills needed to perform our roles. 
   
As a Senior Officer within the NECC Strategy and Briefings Team, you will part of a dynamic response to economic crime protecting the public and communities we serve.

Working within this team provides exciting opportunities for motivated, hardworking and self-starting individuals to join one of our thriving and diverse teams.


Ideally, you will display the necessary skills or experience needed to undertake this role or a willingness to develop them. You will also be someone who displays enthusiasm about the need to tackle the ever emerging and changing landscape that is economic crime.

We look forward to receiving your application.

Job description

What is Economic Crime?

Economic Crime affects more UK citizens that any other criminal threat. It undermines the integrity of the UK economy, our global reputation, security, and prosperity of countries around the world. As a global financial centre, our openness to trade and investment, and ease of doing business are vital for the UK’s prosperity. However, our financial systems and strong economy continue to be exploited by those seeking to generate, move and invest in criminal money, from street cash to the highest levels of bribery and corruption.

Who we are:

The National Economic Crime Centre is a multi-agency centre, established to deliver changes in the response to tackling economic crime.
The NECC brings together law enforcement agencies, government departments, regulatory bodies and the private sector, with a shared objective of driving down economic crime in the UK.
The NECC is hosted by the NCA and has a multi-agency structure, staffed by a mixture of NCA officers and secondees partners, including the private sector. We are a diverse, dynamic centre with a strong focus on developing and upskilling out staff.
From targeting corrupt elites to tackling fraud, our work is high profile and focused on protecting the most vulnerable.

What will the successful candidates be doing?

We are looking for someone who can build strong working relationships across different departments, teams and who has the ability to adapt and prioritise in a fast moving environment.

The successful candidate(s) will:

  • Undertake a full range of leadership responsibilities including demonstrating proactive leadership, building internal and external partner networks, collaboratively working to deliver shared goals, across the threat landscape.
  • Actively contribute to the Home Office on policy, legislation and funding requirements.
  • Lead on projects and work-streams associated with the financial, and economic crime sector.
  • Be adaptable, open minded and innovative in your work and your teams.
  • Attend relevant operational meetings as and when required. Contribute, and provide updates to Senior Management within the team or Directorate.


***All NCA officers must hold SC Enhanced upon entry as a minimum. To meet the National Security Vetting requirements for this role you will need to have resided in the UK for a minimum of 3 out of the past 5 years. For more information please see the Candidate information Pack***

Person specification

About the Role:

Duties include:

  • Support senior management with leading and managing the team by undertaking, delegating and quality assuring core outputs and functions.
  • Manage less senior officers, mentoring them to promote achievement of personal and team objectives.
  • Cultivate and develop effective relationships with key internal stakeholders in order to monitor and assess individual teams deliverables against the commands overall strategy and ambitions.
  • Maintain relationships to collect information on the NECC operational portfolio and response to critical incidents, in order to effectively brief NCA Seniors and cross government stakeholders up to ministerial level, if required.
  • Cultivate and develop effective relationships with key internal and external stakeholders.
  • Monitor and assess NECC performance and Management Information (MI) and how these measure effectiveness of the NECC. Utilise data in a variety of formats to support briefings provided to SLT.
  • Work on projects and work streams sponsored by the senior leadership within the command.

Behaviours

We’ll assess you against these behaviours during the selection process:

  • Delivering at Pace
  • Communicating and Influencing
  • Working Together

Technical skills

We’ll assess you against these technical skills during the selection process:

  • Evidence of working within a fast paced environment with the ability to prioritise your own work (Lead Criteria 1).
  • Ability to work collaboratively with stakeholders, internal and external, at all levels, engaging and building trust (Lead Criteria 2).

Whatever your role, we take your career and development seriously, and want to enable you to build a really successful career with the Agency and wider Civil Service.

If you are an active police pension member immediately prior to joining the NCA, you can continue your membership throughout your employment with us as if you were a serving police officer. If you do remain an active member and subsequently return to a police force, you should be able to continue your membership there too.

All officers in the NCA are members of the UK Civil Service. You will be eligible for:

  • Civil Service pension scheme
  • 26 days annual leave rising to 31 on completion of 5 years continuous service
  • Training and development opportunities
  • Cycle2work scheme

We take the welfare of NCA officers very seriously. All staff have access to Occupational Health services and there are a number of staff representative groups. We also have a range of sporting and other activities on offer.

We can provide flexible working arrangements if the role in question is suitable. These include flexi-time, job sharing and compressed hours (working contracted hours over a shorter period).

Senior Personnel Security Vetting Officer

Darlington, London

Job summary

This recruitment is continuing as usual, but candidates should be aware that following the Government’s announcement on the changes to some civil service departments, roles will be located in the new Department for Business and Trade. We will provide more information if you are selected for a role. This work remains of high importance to the civil service, and we thank you for your continued interest.

This role provides an exciting opportunity to work within an innovative, professional, and evolving unit, and to play an important part in delivering security functions.

The successful applicant will be responsible for ensuring that Department for Business and Trade, (DBT) has the appropriate personnel security policies and processes in place, and that national security vetting including aftercare is carried out efficiently and effectively.

As an HEO in a developing and dynamic environment you will play an active role in delivering these services. You will assist in building and implementing the Personnel security Strategy, support our insider threat group and actively help to role map the roles within DBT.

This will also include the conducting of investigative interviews, and briefing staff on security vulnerabilities. You will also need to be aware of, and consider where, security risks to the business can be managed in post.

You will be trusted with highly sensitive and personal information, which you must handle securely in line with data protection rules whilst maintaining a professional and understanding approach with applicants, considering the sensitive nature of the information being shared.

As a manager you will provide advice and direction to others within the team to support the timely and efficient delivery of decisions. This role is highly suited to a person who can make difficult risk-based decisions, conduct investigations in a sensitive way, and motivate and build the capabilities of staff under challenging circumstances.

This is an interesting and varied role the successful applicant will manage casework by assessing personal vulnerabilities for individuals with access to sensitive government assets, to assist them in maintaining their National Security Vetting clearance.
You will manage 1-2 members of staff, proactively monitoring the performance and delivery of the risk management team, to ensure that personal information and issues are handled sensitively, and that MI is recorded accurately.

You will also be responsible for making recommendations on sensitive and complex vetting decisions, conducting investigative interviews and supporting the Head of Personnel Security and Risk Management in ‘minded to refuse’ clearance interviews.

Job description

Stakeholder Management

  • You will be required to build professional and supportive relationships across the Department, and with CLU4 in order to facilitate the development of effective personnel security processes.
  • You will need to discuss both vetting policies and procedures with staff at all levels, as well as explaining decisions taken and outcomes of their applications – often in one to one interviews.

Vetting

  • You will be responsible for maintaining the personnel security inbox and for processing staff National Security Vetting (NSV) clearances.
  • You will be using the vetting database & Case Management System (CMS) to record decisions and update records.
  • You will be responsible for identifying, arranging and leading lunch and learn sessions and other suitable forms of communication across the department for Vetting related matters.
  • You will secretariat the Exceptional Vetting Panel (EVP) process

Compliance

  • You will lead on the response to audits of the Department’s personnel security capability, and other such compliance checks, and will ensure that the Department is in a good state of readiness.

Records Management

  • You will be expected to maintain appropriate metrics, to demonstrate the effectiveness of the Department’s security strategy, and should be prepared to present and explain these metrics to various management committees, as well as in response to PQs and Freedom of Information (FoI) requests.

This is not an exclusive or exhaustive list, and the post-holders will be required to perform any additional duties reasonably expected of them within the scope of the grade and within the limits of their skill, competence and training.

This role is highly suited to someone who has experience in personnel security vetting and aftercare, with skills in making assessments and decisions based on sound risk management principles. The ability to speak compassionately but robustly would be an advantage.

Hybrid working

The role will be based in either Darlington or London. You will be asked to express a location preference during the application process.

Please be aware that this role can only be worked from within the UK and not overseas.

Informal hybrid working arrangements will be available as agreed with the vacancy manager and in line with the requirements of the role.

Most DBT employees will be working a hybrid pattern, spending 2-3 days a week (pro rata) in an office, on average. If your office location is London, you will be eligible to receive London weighting.

Appointments will be made to candidates in merit order based on location preferences.

Support in applying for our vacancies is available by joining a virtual Candidate Support Session. These sessions include helpful tips and advice on the recruitment process, from application to interview.

Person specification

Essential Criteria

  • Experience/knowledge of Case Management System (CMS) for Vetting.
  • You should have experience of dealing with staff at multiple levels and grades, and of working in a delivery-focused environment.
  • A good understanding of Security and Records Management, as well as Risk Management.
  • You will be expected to pursue continuous professional development to maintain an up-to-date knowledge of the Security Profession.

Desirable Criteria

  • Experience of government security and vetting would be highly desirable

Personal Attributes & Skills

The successful candidates will:

  • Possess strong stakeholder management skills
  • Be able to prioritise and deliver confidently under pressure
  • Be able to work effectively as part of a team
  • Be organised and methodical
  • Have good written and graphic skills to support production of presentation materials
  • Possess good IT skills

Behaviours

We’ll assess you against these behaviours during the selection process:

  • Making Effective Decisions
  • Communicating and Influencing
  • Managing a Quality Service
  • Delivering at Pace
  • Learning and development tailored to your role
  • An environment with flexible working options
  • A culture encouraging inclusion and diversity
  • Civil Service pension with an average employer contribution of 27%

Enquire now

The first step in our joining process is to submit your CV. This will be read to determine the appropriate joining route and you will then be sent an email with a link to the relevant application form.

  • Please upload your CV here